CRITICAL
CVSS 10.0 CRITICAL · EPSS 1% · Ubiquiti UniFi OS
Threat Intelligence for Every Defender
Kerberoasting is a credential theft technique in which an attacker with any valid domain account requests Kerberos Ticket-Granting Service (TGS) tickets for …
Report Date: 2026-06-22
New KEVs: 2 ▼ -5 vs last weekRansomware Victims: 172 ▼ -26 vs last week
2 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. Splunk products show the strongest concentration of risk signals this week. Threat intelligence sources this period reference Evil Corp. Ransomware activity is moderate with 172 new victims posted to leak sites over the last 7 days, with Lockbit5 posting the most victims.
Password spraying is a credential access technique where an adversary attempts a single commonly used password — or a very short list — across a large number…
Report Date: 2026-06-21
New KEVs: 0 ▼ -7 vs last weekRansomware Victims: 208 ▲ +41 vs last week
No new vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog during this reporting window. Threat intelligence sources this period reference Evil Corp. Ransomware activity is moderate with 208 new victims posted to leak sites over the last 7 days, with Thegentlemen posting the most victims.
LSASS Memory dumping (T1003.001) is a credential theft technique where attackers extract authentication material — including NTLM hashes, Kerberos tickets, a…
Report Date: 2026-06-20
New KEVs: 2Ransomware Victims: 204
2 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. Cisco products show the strongest concentration of risk signals this week. Ransomware activity is moderate with 204 new victims posted to leak sites over the last 7 days, with Thegentlemen posting the most victims.